UCF STIG Viewer Logo

The pcscd service on RHEL 9 must be active.


Overview

Finding ID Version Rule ID IA Controls Severity
V-258125 RHEL-09-611180 SV-258125r926362_rule Medium
Description
The information system ensures that even if the information system is compromised, that compromise will not affect credentials stored on the authentication device. The daemon program for pcsc-lite and the MuscleCard framework is pcscd. It is a resource manager that coordinates communications with smart card readers and smart cards and cryptographic tokens that are connected to the system.
STIG Date
Red Hat Enterprise Linux 9 Security Technical Implementation Guide 2023-12-01

Details

Check Text ( C-61866r926360_chk )
Verify that the "pcscd" service is active with the following command:

$ systemctl is-active pcscd

active

If the pcscdservice is not active, this is a finding.
Fix Text (F-61790r926361_fix)
To enable the pcscd service run the following command:

$ sudo systemctl enable --now pcscd